Getting Data In

Is it possible to update the Splunk Universal Forwarder but not change anything else?

raidermike2
New Member

I have some old versions of Splunk lying around and want to just do an update, not change the directory being monitored or anything else.

How can I do that?

The Sudplunk required items in the pillar want me to change more than I want.

0 Karma

adonio
Ultra Champion

you can upgrade splunk according to docs, nothing will be changed
read carefully all the way and follow instructions.
https://docs.splunk.com/Documentation/Splunk/7.3.1/Installation/HowtoupgradeSplunk

good luck

0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI! Discover how Splunk’s agentic AI ...

[Puzzles] Solve, Learn, Repeat: Dereferencing XML to Fixed-length events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Stay Connected: Your Guide to December Tech Talks, Office Hours, and Webinars!

What are Community Office Hours? Community Office Hours is an interactive 60-minute Zoom series where ...